Re: Yum Install postgresql93 with SSL - Mailing list pgsql-admin

From Kido Kouassi
Subject Re: Yum Install postgresql93 with SSL
Date
Msg-id CA+ebzuk+a2uVfKWAP28qg0K=yeK0x_JQZxXH_f7qxxpGPJtADA@mail.gmail.com
Whole thread Raw
In response to Re: Yum Install postgresql93 with SSL  (Tom Lane <tgl@sss.pgh.pa.us>)
List pgsql-admin
hello Tom,

Thanks a bunch,

The ownership was right but I my permissions were wrong.

I had -rw-r--r--  on my cert files after I changed it to -rwx------ everything started working.

You guys are awesome,

Thanks again,

-- Kido



On Mon, Dec 15, 2014 at 1:17 PM, Tom Lane <tgl@sss.pgh.pa.us> wrote:
> On 12/15/2014 12:58 PM, Kido Kouassi wrote:
>> I used the following sequence to install
>>
>> 1- yum install postgresql93-server.x86_64 postgresql93-jdbc.x86_64 postgresql93.x86_64 postgresql93-contrib.x86_64 postgresql93-pltcl.x86_64 postgresql93-plpython.x86_64
>> postgresql93-odbc.x86_64 postgresql93-libs.x86_64
>>
>> 2- service postgresql-9.3 initdb
>>
>> 3-service postgresql-9.3 start
>>
>> at the first try database started with no issue,
>>
>> then I copied the Cert and keys files, to the data folder,
>>
>> modified the postgresql.conf with
>>
>> ssl = on
>> #ssl_ciphers = 'DEFAULT:!LOW:!EXP:!MD5:@STRENGTH'
>>
>> #ssl_renegotiation_limit = 512MB
>> ssl_cert_file = 'server.crt'
>> ssl_key_file = 'server.key'
>> ssl_ca_file = 'root.crt'
>> #ssl_crl_file = ''
>>
>> After this I change ownership of the whole data folder to postgres user and restarted the service.
>>
>>
>> 1- The service did not start
>>
>> 2- Nothing was logged in the log file.

I'd bet this has nothing to do with SSL and lots to do with the "change
ownership" step.  You sure you did that right?

                        regards, tom lane

pgsql-admin by date:

Previous
From: Kido Kouassi
Date:
Subject: Re: Yum Install postgresql93 with SSL
Next
From: Jeremiah Ocasio
Date:
Subject: Re: Data Masking